header-logo
Suggest Exploit
vendor:
Fake Hit Generator
by:
DigitALL

Fake Hit Generator Shell Upload Vulnerability

The vulnerability allows an attacker to upload a malicious file to the web server. The vulnerability exists due to insufficient validation of the file type that is being uploaded. An attacker can exploit this vulnerability by uploading a malicious file to the web server.

Mitigation:

The application should validate the file type before uploading it to the web server.
Source

Exploit-DB raw data:

# Exploit Title: Fake Hit Generator Shell Upload Vulnerability

# Date: 25.12.2009

# Author: DigitALL

# Greetz: Zombie KroNickq HackSpy and All 1923turk.biz Members

# Version: 2.1

# Dork: "Upload unique IP List:" and "The Ultimate Fake Hit Generator - BOOST YOUR ALEXA RANK"

# Application: Please Proxy List Upload ( Your Shell )

# Shell: /proxy/shell.php

# Shells Demo: http://site/alexa/proxy/xx.php